Akin HTTP request fingerprint
a11cun030_00000049_54d07b6d
Seen 2026-09-22 to 2026-09-24 across the retained window.
The feed is a URL your firewall, MISP or SIEM polls; it needs a free account so it can be revoked.
Or watch the top network: AS45102 sends an email when it next hits a sensor.
Countries
US 471JP 167DE 166MY 152SG 137HK 82TH 37GB 23NG 19BE 8
User agents claimed
curl/7.29.0235 IPs1.9K
curl/7.64.1876 IPs1.1K
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/153.0.0.0 Safari/537.3624 IPs276
curl/8.5.03 IPs203
curl/7.68.0111 IPs135
Source IPCCNetwork
Last seenEvents
93.123.109.214BGAS48090 Techoff Srv Limited2026-09-23185 203.55.131.3USAS32475 Internap Holding LLC2026-09-2435 216.226.76.30USAS50219 Valence Technology Co.2026-09-2425 71.6.134.204USAS10439 CariNet, Inc.2026-09-2424 152.32.252.233HKAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2423 165.154.129.74GBAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2422 216.226.76.10USAS50219 Valence Technology Co.2026-09-2421 165.154.40.42HKAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2420 216.226.77.10USAS50219 Valence Technology Co.2026-09-2420 165.154.172.223USAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2420 152.32.235.69USAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2420 71.6.134.232USAS10439 CariNet, Inc.2026-09-2418 101.36.124.220HKAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2418 152.32.235.160USAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2418 216.226.77.20USAS50219 Valence Technology Co.2026-09-2417 165.154.41.205HKAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2417 165.154.173.226USAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2417 152.32.226.8HKAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2416 165.154.11.202NGAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2416 123.58.213.117HKAS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITED2026-09-2416
About this fingerprint
Akin fingerprints an HTTP client from the request head alone: the protocol version, line endings, body framing, which headers are present, and the grammar of the negotiation header values. The User-Agent string and the request path are deliberately excluded, because both are trivially changed and both were measured varying within a single operator, so a scanner that rotates either keeps one fingerprint. The middle section is a presence bitmap rather than a hash, so two tokens can be compared directly to see how many headers the clients differ by.